yttcom.net
Backend / Tools / DB Viewer
yttcom.net
Domains / DB Viewer
v2.0 · 07.11.26
◇ 10-sys.db
systems/10-master/data/
records.db inbox.db transfers.db knowledge.db jurisdiction.db
10-sys sessions Row #92
Tables
decisions
198
domain
8
events
0
gov_archive
0
gov_archive_fts
0
gov_archive_fts_config
1
gov_archive_fts_data
4
gov_archive_fts_docsize
0
gov_archive_fts_idx
2
items
18
sessions
99
sqlite_sequence
5
transfers_log
0
sessions — Row #92
10-sys.db · systems/10-master/data/
⌂ Master Hub →
id
92
system
10 Master
package
Series K
status
closed
duration_minutes
85
decision_ids
context_pct
—
context_bucket
—
_rowid
92
summary
Security audit session: 2 rounds of findings from a Claude Code session, both independently verified before any fix. Fixed: Gym health data exposure, a corrupted verify_lib.php crashing OPEN.php/SYNC.php platform-wide, admin token exposed in 3 public gov files + EXEC_OPEN files, and 8 public .bak/.prev backup files leaking source + token plus a directory-listing leak. Token rotation itself deferred as its own dedicated project -- full plan written to TOKEN-ROTATION-PLAN.md for next session.
work_done
Fixed and verified live: Gym Logger data .htaccess (2 files), verify_lib.php corruption (19 stray chars), token removed from ORIENT-REG.md/DASHBOARD-PANELS-STD.md/EXEC-OPEN-TEMPLATE-M.md, EXEC_OPEN_*.txt web access denied via systems/.htaccess, 8 .bak/.prev files + directory listing blocked via root .htaccess and transfers/.htaccess. Every fix backed up first, verified live after, logged to memory pipeline (K369,K371,K372,K373,K374) and USR369/CHEAT-SHEET.md. Wrote TOKEN-ROTATION-PLAN.md -- full 4-phase plan for the auth-refactor and repeatable rotation capability USR369 wants, ready for next session to pick up.
▼ Show timestamps
closed_at
2026-08-18 18:51:50
opened_at
08/18/26 5:24pm PT
Backend Domains Panel DB Viewer Transfers
Backend Tools DB Viewer DB Admin Server Map File Editor Backend Tools DB Viewer DB Admin Server Map File Editor